ePerl 2.2.12 allows remote attackers to read arbitrary files and possibly execute certain commands by specifying a full pathname of the target file as an argument to bar.phtml.
CVSS 2.0
Severity: HIGH
Problem Type: NVD-CWE-Other,
Products Affected
| Vendor | Product | Version |
|---|---|---|
| ralf_s._engelschall | eperl | 2.2.12 |
Multiple buffer overflows in ePerl before 2.2.14-0.7 allow local and remote attackers to execute arbitrary commands.
CVSS 2.0
Severity: HIGH
Problem Type: NVD-CWE-Other,
Products Affected
| Vendor | Product | Version |
|---|---|---|
| debian | debian_linux | 2.2 |
| ralf_s._engelschall | eperl | 2.2.13 |
| ralf_s._engelschall | eperl | 2.2.12 |
| suse | suse_linux | 6.3 |
| suse | suse_linux | 6.4 |
| suse | suse_linux | 7.1 |
| mandrakesoft | mandrake_linux | 7.2 |
| suse | suse_linux | 7.0 |
| mandrakesoft | mandrake_linux | 7.1 |
The #sinclude directive in Embedded Perl (ePerl) 2.2.14 and earlier allows a remote attacker to execute arbitrary code by modifying the 'sinclude' file to point to another file that contains a #include directive that references a file that contains the code.
CVSS 2.0
Severity: HIGH
Problem Type: NVD-CWE-Other,
Products Affected
| Vendor | Product | Version |
|---|---|---|
| ralf_s._engelschall | eperl | 2.2 |
| ralf_s._engelschall | eperl | 2.2.13 |
| ralf_s._engelschall | eperl | 2.2.4 |
| ralf_s._engelschall | eperl | 2.2.6 |
| ralf_s._engelschall | eperl | 2.2.12 |
| ralf_s._engelschall | eperl | 2.2.10 |
| ralf_s._engelschall | eperl | 2.2.1 |
| ralf_s._engelschall | eperl | 2.0.2 |
| ralf_s._engelschall | eperl | * |
| ralf_s._engelschall | eperl | 2.0.1 |
| ralf_s._engelschall | eperl | 2.2.3 |
| ralf_s._engelschall | eperl | 2.1.2 |
| ralf_s._engelschall | eperl | 2.2.2 |
| ralf_s._engelschall | eperl | 2.0 |
| ralf_s._engelschall | eperl | 2.1 |
| ralf_s._engelschall | eperl | 2.2.9 |
| ralf_s._engelschall | eperl | 2.1.1 |
| ralf_s._engelschall | eperl | 2.2.7 |
| ralf_s._engelschall | eperl | 2.2.11 |
| ralf_s._engelschall | eperl | 2.0.3 |
| ralf_s._engelschall | eperl | 2.2.8 |
| ralf_s._engelschall | eperl | 2.2.5 |